Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3241. PoCs published by DNX.
AI-analyzed exploit summary This Perl script exploits a blind SQL injection vulnerability in UltraStats <= v0.2.142 via the 'id' parameter in players-detail.php. It automates the extraction of usernames, passwords, and database prefixes through time-based SQLi techniques.
Description
SQL injection vulnerability in players-detail.php in UltraStats 0.2.136, 0.2.140, and 0.2.142 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
This Perl script exploits a blind SQL injection vulnerability in UltraStats <= v0.2.142 via the 'id' parameter in players-detail.php. It automates the extraction of usernames, passwords, and database prefixes through time-based SQLi techniques.